REF ID : A62842 



Lecture No. 5 

For a half century following the close of the Civil War, cryptology in 
the United States enjoyed a period of hibernation from which it awoke at long 
last, about 191 k, not refreshed, as did Rip Van Winkle, but weaker. This is 
.perhaps understandable if we take into account the fact that the United States 
was able to enjoy a long era of peace, broken only briefly by the short war with 
Spain, in 1898. For over three decades there was little or no need for cryptography 
in the United States Government, except for the communications of the Department 
of State. The military and naval services apparently felt that in time of peace 
there was no need for either cryptography or cryptanalysis, and since it looked 
as though the US was going to enjoy peace for a long, an indefinitely long time, 
those services did not think It necessary or desirable even to engage In theoretical 
cryptologic studies. Of course, the War Department and the Army still had those 
route ciphers and cipher disks^ described In the preceding lecture; the Navy 
Department and the Navy had cipher disks for producing simple monoalphabetic ciphers; and 
the Department of State had a code more or less specifically designed for Its 
communications. Separated from Europe by the broad Atlantic, and mindful of 
General Washington's policy of non-involvement In the problems of European 
diplomacy, America followed the traditional and easy course of Isolationism. 

*. 4 

The quarrels among the countries In Europe were none of our business and America 
stood aside for a half century, not even interested In. those disputes. \ 

There was, however. In this long hibernating period in U. S. cryptology one \, 

fV- 

' 

episode of particular interest. Zt concerned a Presidential election in which the \ 

\ 

circumstances paralleled the election of 1960^ when the very small popular-vote 
majority of the Democratic candidate suggested a possible upset in the electoral 
college voting. The episode to which I refer here occurred nearly a century ago. 

In the presidential election of 1876, in which Democratic candidate Samuel J. Tilden 
was pitted against Republican candidate Rutherford B. Bayes. On the basis of early 
evening election returns Tilden seemed to be easily the winner. Indeed, Just before 
going to bed on election night, 8 November 1876, Hayes conceded the election to 
Tilden, and, in fact the newspapers next morning reported a Tilden victory. But 
when final tallies began coming in they shoved that the closeness of the popular 
vote made Tilden 1 s victory not so sure as his supporters had calculated, and they 



* 

1 



Approved for Release by N5A on 12-17-2013 pursuant to E.O. 13523 



REF ID : A62842 



therefore began to become apprehensive about their candidate's victory. Their 
apprehensions were valid because of our peculiar system of electing a president, 
peculiar because it is the electoral and not the popular vote which determines who 
is to be the next occupant of the White Bouse as President. Two days after the 
people had voted it became clear that Tilden would have 134 electoral votes, Just 
one vote short of insuring victory, whereas Bayes would have only 163, thus needing 
22 more. The Tilden supporters began a frantic campaign to get that one additional 
vote they needed and they didn't hesitate to try every possible ruse to obtain it, 
including bribery, a rather serious piece of business and one obviously requiring 
a good deal of secrecy, especially in communications. Of course, many telegrams 
had to be exchanged between the Tilden headquarters la New York City and confidential 
agents who had to be sent to certain states where one or more electoral votes could 
perhaps be purchased; telegrams also had to be exchanged among those secret agents 

tOeJtCw. 

in the field. About 4 00 telegrams were exchanged and some 200 of these^in 
cryptographic form. Z feel sure that you will be interested to learn that because 
of communication difficulties two almost -consummated bribery deals fell through; 
a third deal failed because the electors proved to be honest Republicans not 
susceptible to monetary temptation. The existence of these telegrams^however, remained 
unknown to the public for months and we shall came to them later. Despite the efforts 
of the Tilden supporters, the outcome of the election remained in doubt because 
four states, Florida, South Carolina, Louisiana and Oregon, each sent two groups 
of electors, an event not foreseen and provided for In the Constitution. A crisis 
arose and the country seemed to he on the verge of another civil war. By an Act of 

29 January 1877, Congress created a special electoral commission to investigate and^ 

> \ 

decide upon the matter of the disputed electoral votes in the four states. Recounts 
of votes in certain election precincts were made, sometimes aided by soldiers of 
the Federal Army. The commission voted in favor of the Hayes electors in each case, 
and^ having obtained the needed 22 electoral votes, Bayes entered the White Bouse. 

It was only some months afterward that the telegrams to which I have referred were \ 
brought to light and a situation arose which Congress felt it had to look into. 

Somehow or other, in the summer of 1878, copies of those telegrams had come into 
the possession of a Republican newspaper in New York City, The Tribune . Interested 

1 

only in ascertaining the truth, the editor put two members of his staff on the Job 
and they succeeded in solving those telegrams which were in cipher. 

2 



1 




REF ID : A62842 



Various books dealing with the political aspects of this intriguing story 
are available in public libraries, but those of you who are interested only In 
its cryptologic aspects will find excellent material in the following three 
documents: 

(1) "The Cipher Dispatches", The Mew York Tribune, Extra No. 44, 

New York, (l4 Jamary) 1879. * 

(2) Hansard, John R, G., "Cryptography in Politics", The North 
American Review, Vol CXXVTII, No. 268, March 1879# PP 315-325* 

(3) Holden, Edward S., The Cipher Dispatches, New York, 1879. 

(4) U. S. Souse Miscellaneous Documents, Vol 5 , 45th Congress, 3rd 
Session, 1878-79. 

The last -mentioned item, that put out by the Congressional Bouse Committee 

which had been designated to conduct the investigation and which was named "The 

select Committee on alleged frauds in the Presidential Election of 1876," is of 

special interest. In the course of the investigation, the Committee solicited the 

technical assistance of Professor Edward S. Holden, , of the United States Naval 

Observatory in Washington, the author of the third item listed above, I believe 

A 

he was a captain in the Navy and had specialised in mathematic a. The Tribune bad 
brought him into the picture by asking hla help when solution seemed hopeless but 
it turned out that Mr. John R. G* Hsssard, the chief of The Tribune staff, and his 
colleague. Colonel William M. Grosvenor, also of that staff, solved the ciphers 
independently *£ and, in fact, shortly before Prof. Holden solved them, although 
it was the latter that the Congressional Committee called upon to explain matters, 
as would only be natural under the circumstances . 

Professor Holden's testimony, in which he set forth his solution of the nearly 
200 cryptograms entered in evidence, is presented in the form of letter to the Committee, 
dated 21 February 1879* In it jihe described and explained all the crytoey stems 

used, together with their keys and full details of their application. In that 

\ 

letter. Professor Holden makes the following statement: "By September 7, 1878, 

I was in possession of a rule by which any key to the most difficult and ingenious 
of these /cipherg7 could infallibly be found." Holden worked out the transposition 
keys but in this he had been anticipated by the Tribune cryptanalysts. There 
were in all 10 different keys, two for messages of 10 words, two for messages of 
15 words, etc., up to and including two for messages of 30 words. Here is the 
complete "Table of Keys": 



3 




REF ID : A62842 



TABLE GF KEYS 



10 Words 


15 Words 


2b Words 


25 Words 


30 Words 


Z 


II 


HI 


17 


1 V 


VI 


VII 


VIII 


IX 


X 


9 


4 


8 


3 


6 


12 


6 


18 


17 


4 


3 


7 


4 


7 


9 


18 


12 


12 


30 


26 


6 


2 


1 


12 


3 


3 


23 


6 


26 


23 


1 


9 


7 


2 


5 


5 


18 


25 


l 


15 


10 


6 


13 


6 


4 


4 


10 


14 


11 


8 


5 


3 


5 


8 


13 


1 


3 


1 


20 


27 


2 


8 


2 


4 


14 


20 


17 


16 


2$ 


16 


7 


10 


6 


1 


20 


16 


20 


11 


5 


30 


4 


1 


11 


11 


, 19 


2 


15 


21 


10 


24 


8 


5 


14 


15 


12 


19 


19 


5 


20 


9 






9 


9 


17 


13 


8 


15 


27 


5 






3 


-,14 


1 


10 


2 


'2 


19 


19 






15 


5 


11 


6 


24 


17 


28 


17 






12 


10 


15 


7 


5 


24 


24 


25 






10 


13 


18 


14 


11 


9 


4 


22 










8 


17 


7 


22 


7 


28 










16 


11 


13 


7 


13 


1 










2 


15 


1 


4 


18 


18 










10 


9 


25 


10 


12 


12 










7 


8 


22 


8 


22 


6 














9 


23 


21 


21 














16 


20 


15 


20 














21 


3 


3 


29 














14 


13 


9 


14 














4 


19 


14 


7 


















2 


3 


















6 


H 


















16 


13 


















23 


10 












\ 






8 


2 



You nay be wondering why there are two transposition Keys for each length 
of message from 10 to 30 words. In multiples of 5* The two keys constituting 
a pair are related to each other, that la, they bear a relationship which 
Hr. Hiassard, one of the Tribune cryptanalysts, termed "correlative", but which 
we now would call an "enclpher-declpher” or a "verse-inverse" relationship. 

Either sequence of a correlative pair of sequences may be used to encipher a message; 

} 

the other^^^g^ep^eilrtHt^^i^a^ can! then be used to decipher the message. For 

/ 

example, key ZZZ consists of the following series of numbers: 8-4-1-7-13. i . .etc; 

i \ ' 



i 



and the correlative, &ey IV, is 3-7-12-2-6. . .etc. A cipher message of 15 






words can be deciphered either by (l)/numbering Its words consecutively and ihen 
assembling the words in the order 8/4-1^7-13* or by (2) writing the sequence 
3-7-12-2-6-. . .above the words o% the cipher message and then assembling the 
numbered words according to the sequence 1-2-3-4-5* • . Thus, there were. 

In reality, not ten different transposition keys but only five. In the case of 
each pair of keystone of them must have been the basie sequence, the other the 
Inverse of it, or at least a case derivative thereof. 




i 



4 




REF ID : A62842 



1 suspect that the basic or "verse" sequences of numbers were not drawn up 
at random but were derived from words or phrases; and I think that the odd-numbered 
ones are the "verse"/ because/ as you will notice, it is in the odd-numbered keys 
that the positions of sequent digits reflect the presence of an underlying key 
word or phrase; this is not true in the even-numbered keys. I have not seriously 
attempted to reconstruct the key words but perhaps scans of you may like to try and 

jxriaap g will succeed in doing so. 

/ 

In addition to transposition, this system Involved the use of "arbitraries" to 
represent certain words, the names of important persons and places, numerals, etc. 

There were also a few nulls. 

Professor Bolden adds some comments about this system which are worth' quoting: 

The essence of this ingenious and novel system consists in taking apart 
a sentence written in plain English (dismembering it, as it were) and again 
writing all the words in a new order, in which they make no sense. The 
problem of deciphering it consists in determining the order according to 
which the words of the cipher should be written in order to produce the 
original message. 

There is one way, and only one way, in which the general problem can be 
solved, and that is to take two messages, A and B, of the same number of words, 
and to number the words in each; then to arrange message A with its words in 
an order which will make sense, and to arrange the words of message B in the 
same order. There will be one order - and only one - in which the two 
messages will simultaneously mate sense. This is the key. 

— g ere ^ a nutshell, we find the basic theory of solving transposition 
ciphers by diagramming messages of the same length, explained in a most 
succinct manner. J 

It appears that Professor Holden, clever as he undoubtedly was, did not note 
the verse-inverse relation in each pair of sequences, or, if he did, he failed to 
mention it in his testimony. However, Has sard in his article (reference No. 2 above) 
specifically points this out. 

There were enough messages in this system to mate it possible to salve^worda 
used, as well as to recognize a few nulls which were occasionally added to complicate 

matters. Hence, most complicated of the cryptosystems involved in this bizarre 

A 

political episode, were solved. 

Another system used by the conspirators employed a biliteral substitution, 
that is, one in which a pair of cipher letters represents a single letter. This 
substitution was based upon a 10 x 10 checkerboard. Apparently neither Professor 
Holden nor the Tribune cryptanalysts recognized the latter principle, nor did they 
find that the coordinates of the checkerboard employed a key phrase, nor did they 
realize that the same checkerboard, with numerical coordinates, was used for a 
numerical substitution alphabet in which pairs of digits represent letters of the alphabet 




REF ID : A62842 



Sere ore two of the messages exchanged by the conspirators, one In the letter 
cipher, the other In the figure cipher. The messages are long enough for solution. 
Try to solve them, reconstruct the matrix sod find the key phrase front which the 
coordinates of the matrix were derived. It should amuse you by Its appropriateness. 



The message In letter cipher Is as follows: 

Jacksonville, Nov. 1 6 (1876) 

Geo. R. Raney, Tallahassee: 

PP YY EM NS HY YY PI MA SH NS YY SS IT EP AA EN SH NS S5 US SB NS MM PI YY SN 

PP YE AA PI El SS YE SH AI NS S3 PE El YY SH NY NS SS YE PI AA NY IT NS SH YI 

z' 

X'-y , SP YY PI NS YY SS IT EM El PI MM El SS El YY El SS IT El BP YY PE El AA S3 IM 
AAYESPNSYYIANSSSEISSMMPPNSPINSSNPINSIMIMYYITEMYYSSPB 
YYMNNSYYSSITSPYYPEEPPPMAAAYYPIIT L 'Engle goes up tomorrow. 

(Signed Daniel 

The example in figure cipher is as follows: 

Jacksonville, Nov. 17 (1876) 

S. Pasco and £. M» L' Engle: 

84 55 84 25 93 34 S2 31 
31 75 93 & 77 33 55 52 
^ 93 20 90 66 77 65 33 84 

63 31 31 93 20 82 33 66 
52 48 44 55 42 82 48 89 
42 93 31 82 66 75 31 93 
(Signed) Daniel 

There were several other systems involved in this episode of political 
skullduggery but I am going to have to pass them by because they hardly deserve 
attention in this brief history. I do, however, want to call your attention to the 
very close resemblance between the word-transposition ciphers characterized by 
Professor Bolden as the "moat difficult and ingenious” of the ciphers he solved, 
and the USMTC route ciphers described in the proceeding lecture. Yet, not 
only be but also the Tribune amateur cryptanalysts solved those ciphers without 
too much difficulty, even though they were technically more complex. Z think their 
work on the Tilden ciphers clearly confirms my own appraisal of the weakness and 
of the route ciphers used by the UBtrC in the Civil War. 



6 




REF ID : A62842 



After this digression into the realm of what may be called political cryptology, 

let us now go on with our cryptologic history. Z have already told you that the 

A 

Department of State used a code for cryptographic canmunlcations in the years 
following the Civil War, but I do not know what it was like. It may even have been 
an adaptation of some commercial code. But in an article entitled "secret writing", 
which appeared in Century Magazine, Vol LXXXV, November 1912, No. 1, a man named 
John H. Has veil, apparently at that time a code clerk in the Department, referred 
to a new code of the department in the following terms: 

The cipher of the Department of State lslhe most modern of all in the 
service of the Government. It embraces the valuable features of its 
predecessors and the merits of the latest inventions. Being used for every 
species of diplomatic correspondence, it is necessarily copious and 
unrestricted in its capabilities, but at the same time it is economic In its 
terms of expression. It is simple and speedy in its operation, but so 
Ingenious as to secure absolute secrecy. The construction of this cipher, 
like many ingenious devices whose operations appear simple to the eye but 
are difficult to explain in writing, would actually require the key to be 
furnished for the purpose of an Intelligible description of it. 

Only four years later a certain telegraph operator and code clerk of the 

State Department proved how vulnerable the Department's system of enciphered 

code really was. His name was Herbert 0. Yardley and many of you may know a bit 

about him aa the author of a famous or infamous book (depending upon whose side 

yourton) entitled The American Black Chamber, published in Indianapolis by the 

Bobba -Merrill Co. in 1931* So far as I know it is the only book which cannot 

legally be reprinted in the United States because a special lav passed in 193^ 

makes it a criminal offense to do so. That is quite a story in itself but I 

cannot tell it now. If you happen to own a copy of the first and only American 

edition, don't let it get away from you, because you can only obtain another copy 

of it by a more or less "under the table” deal; but you may be able to purchase 

a 1 British edition, or a translation in Trench, in Japanese, or in other languages, 

for the book was sensational. But to return to that State Department cryptosystem, 

which was considered by Haswell as giving absolute secrecy and which was readily 

/ 

solved by Yardley, here is wfcat appears on the cover page of Yardley 's 21-page 
typewritten analysis and solution of the system: 

"THEORY AND PRACTICE OP ENCIPHERED CODS 
State Department Problems 
I, H, and III 

NCOS: The following was written in March 

1916 and, so far as I can learn, is the 
first successful attempt to solve a problem 
" in enciphered code. 

(Signed) H. 0. Yardley 1 ' 



7 





REF ID:A62842 



Yardley was quite wrong in thinking that his was the first successful 
attempt to solve a problem in enciphered code, for in Europe more complicated cases 
were often solved and Z imagine that British cryptanalysts could have read^aatt 

A 

p e whags •di d- seaAy State Department messages as a more or less routine matter. I 
think I am warranted in assuming that what I have Just said is true because, in 
Europe, crypt analytic studies were going on apace during the years of American 
neglect of such studies. The turning point from neglect to a renaissance of Interest 
in cryptologic studies in Europe is said by some authorities to have been about 
the year 1880; but we must confine ourselves for the most part to developments in 
America, net ia -Swept ., in order to keep this lecture within bounds of what can 
be told within a period of an hour or so. 

Zn our Navy it seems that simple monoalphabet ic ciphers continued in use 
until^the middle of the eighties, when several naval officers were designated to 
prepare a more suitable system, based upon a code particularly designed for naval 
communications . The system they worked out was embodied in a very large codebook, 

18" long, 12“ wide and 2" thick, which had the official title The U. S. Wavy 
Secret Code . There was also an accompanying buir separate cipher book, almost 
as large, and designated as The Book of Key Words . Zn addition to these hm» 
hash* was a third large book called " General Geographical Tables" . The system 
was placed Into effect on 1 December 1087 • Later Z will show you a most historic 
message sent in that .system of secret communication, which today impresses one 
as being extraordinarily clumsy and slow. 

Zn our A ray, in the middle eighties, a code was also prepared. Zt is no 
pleasure to have to tell you that, its composition and format hardly shed laurels 

1 a*\ s 

upon those responsible for its reproduction, because it was merely sifljple and 

A • \ 

acknowledged adaptation of a commercially available small code for use by the 
general public^firat published in 1870 with the title Telegraphic Code to Ensure 

Secrecy in the Transmission of Telegrams . It had been compiled by the Secretary 

/ 1 1 v 

-of the French Trans -Atlantic Telegraph Company, a man named Robert Slater, end it 

F N 

' / N 

became known everywhere as "Slater's Code". As to the nature of the code, I will 

/: // . - 

quote /from Slater’s own "Short /explanation of the mode of using this worl^'in a sort. 

1 

of preface to the 2nd Edition:/ 

/ 1 ' Tt is a numbered Telegraphic Dictionary of the English language, of which 

each word bears a distinctive No. (frcto 00001 to 25000, with exactly 100 words 
per page), and the method /of using it is by an interchange of Nos., in 
, accordance with a prlvat^ understanding between correspondents that a further 



/ 



J 



,8 1 




REF ID : A62842 



Bo* Is to be added to or deducted from the number la the code, of the word 
telegraphed or written, to indicate the real-seed intended, thus a "Symbolic " 
or "Dunny Word" is telegraphed, the meaning of which can only he read by 
those who hare the key to the secret of bow many should be added to or 
deducted from the nunher In the Code, of the "Duswy Word” to find the word 
meant. (Punctuation aa in the original) 

Bare we have a sentence of 1 X 6 words. Though It la rather long and a bit 
murky Z think you will gather Its import. The system as thus far described Is 
vhat ve now call additive or attractive method* But In the detailed Instructions 

> , A 

Slater goes one step further and suggests that instead of telegraphing the code 
nunher resulting from addition or subtraction of a key number, the word standing 
alongside the sun (or difference) of the mathematical operation be sent es the 
telegraphic code word. 

Slater's code must have met with popular acclaim because by 1906 it was in 
its fifth edition* You may like to see the title page of the second edition (1879), 
a copy of which la in my collection. As for a copy of the very first edition, 

not even the library of Congress has one, that's how scarce it la. To get on with 

/ 

the story, in 1889 the War Department published an adaptation of Slater’S Code 

/ 

for its use and the use of the Any. Sere is a picture of its title page, the 
only difference between it and that of Slater' a Code being in the spelling of the 

word "secrecy”, as you can easily see In the picture X show you next. Zt would 

\ 

appear that the "compiler" of this code. Col* Gregory, was just a bit deficient 
in Imagination, because not only did he merely borrow the basic 
of Slater's Code, but even when it came to explaining and giving 
enciphering the code groups, the Colonel used not only the Identical 
also the very same wording end even the very aaae type of example a of 
, that are found in Slater's original. Let me show an example in Slater's 
by side with the seme example from Gregory's: 




1 

1 



9 



I 




REF ID : A62842 



You will note that Col. Gregory Just couldn't use the sene text for his 
example a of encipherment that Slater used, which was: "The Queen Is the supreme 

power In the Realm," Instead he used the enigmatic text; "War is a punishment 
whereof death Is the maxlimaa. "* 

All the other methods and example a of encipherment In the two codes are 
practically Identical. Colonel Gregory gives credit In the following terms to 
a civilian a^je in his greet work: "The labor of compiling the new vocabulary 

i 

has been performed by Mr. W. G. Spottawood. " What did the latter dot Well, Mir, 
Spottswood 's work consisted In casting out from Slater’s list such words as 
AB ALIENATE and ABANDONEE and replacing them with such words as ABATEMENT and 
ABATIS. This sort of work must indeed have been arduous. I’m sorry to appear 
to be so critical of end satirical about the performance of my predecessors in 
the construction of codes and code systems for War Department and Army usage, but 
I feel sure you will agree that more imagination and ingenuity could have been 
employed than were used by Colonel Gregory and Mr. Spottswood. 

Col. Gregory prepared a confidential letter addressed to Lieut. General 
Sheridan, "Commanding Army of the U.S.", to explain the advantages of the new 
code. But in this letter Col. Gregory quotes very largely from Bolden’s little 
brochure and deals almost solely with the mays In which additional security 
may be gained by changing the additives to the code numbers in Slater's Code. 

For example, for all messages sent in January add 111; for all messages sent in 

/ 

February add 222, in March 333, etc. Another suggested way: Send out a sample 

message In ordinary English: "Add 1437 to all ciphers until further orders." 

1 

Believe It or not, this was the code that the War Department and the Army 
used during the Spanish "American War. It was apparently used with a simple 

additive, because in a copy In my collection the additive Is written on the 

u\ 

Inside of the front cover. It wear 777; perhaps it was the additive for the month 
of July, but the number 777 was written In ink, so it may have been the permanent 
additive for the whole of the war. In pages 41-42 of The American Black Chamber 
the author throws an Interesting sidelight on this code system; 

*1 wonder what "that sentence means* It sounds sort of "anti -American" to me. 
Punishment to whom? To the soldiers and sailors and airmen who defend our 
country? If not to them, then to whom? To the people of a whole nation fighting 
for liberty? I Just don’t understand the sentence. Do you? 

t 

1 

« 

1 



10 




REF ID : A62842 



The coagulation of codes and ciphers was, by General Orders, 
a Signal Corps function, but the war revealed the unprepared- 

ness of thlyd’ department in the United States. How much so is 
Indicated by a talk I had with a high officer of the Signal Corps who 
had just been appointed a military attache'' to an Allied country. It 
was not intended that attaches should actually encode and decode their 
own telegrams, but as a part of an intelligence course they were 
required to have a superficial knowledge of both processes in order 
that they might appreciate the Importance of certain precautions enforced 
in safeguarding our ccsnsunloations. 

When the new attache, a veteran of the old Army, appeared, I 
handed his a brochure and rapidly went over sane of our methods of 
secret ccnmmications. To appreciate his attitude, the reader should 
understand that the so-called additive or subtractive method for 
garbling a code telegram (used during the Spaaish-Aaerlcaa War) Is 
shout as effective for maintaining secrecy as the simple substitution 
cipher which as children we read in Poe's The Gold Bug . 

He listened impatiently, then growled: "That's a lot of nonsense. 

Whoever heard of going to all that trouble? During the Spanlsh-American 
War we didn't do all those things. We just added the figure 1698 to all 
our figure code words, and the Spaniards never did find out about it." 

Although the American Slack Chamber abounds with exaggerations and 

distortions, what the author tells about the Inadequacies of United States codes 

and ciphers in the years just before our entry into World War I are true enough 

i 

and Yardley's impatience and satiric comments in this regard, , it grieve^ me to 
say, are unfortunately fully warranted. 

During o perhaps shortly after the end of the Spani sh -American War, the 
War Department must have gfegun to realise that there were shortcomings in the code 
based upon Slater's Code, the one which was in current usage and upon which I have 
already dwelt. On 1 6 January 1898 the publication of a new War Department Telegraphic 
Code was authorised by General Orders No. 9* The code was to be prepared under 
the direction of General A. W. Greely, then Chief Signal Officer of the Army* 

The cited General Order makes it quite clear that the War Department version of 

Slater's Code was still in use, but the Western Union Telegraphic Code was to be 

\ 

used in connection with Slater's until the new War Department Code was completed, 

\ 

\ 

which apparently was ready In December 1899, when Slater's was withdrawn froo use 

\ 

\ 

with this statement in General Orders No. 203: "By direction of the Secretary of 

\ \ \ 

War, the Telegraphic Code to Insure Secrecy in the Transmission of Telegrams, will 

on and after January 1 5, 1900, only be used for correspondence in such cases as may 

be specially ordered by the Secretary of War." On 12 December 1899 the new 

War Department Code was Issued. It comprised a specially-compiled list of tables, 

I 

wprds, phrases and sentences to which code numbers and code words were assigned 

for specific use in War Department and Artsy communications . The code numbers 

f 

began with 78201 and went to 95286; the accompanying code words were foreign, 

i 

outlandishly unusual real words, and artificial words, beginning with K0FERK3ES, 



11 



REF ID : A62842 



K0FEH8LEURS, KQFEFMOLER, etc, etc., down through the L's, M's, and ending with words 
such as NAZWBLGEN, NEAHTHE, HEAPELGELB, etc, etc . You may wish to Know why the 
code numbers didn't begin with 00000 and go to 99999; or why the code groups began 
with K and vent for thousands and thousands of words down to N. The answer is that this 
brand new War Department Telegraphic Code was to be used, as Slater's Code was used. 

In conjunction with the Western Obion Telegraphic Code, a code of 78,200 groups 
beginning with numerical code groups 00000 accompanied by literal code words 
beginning with EEERKAR, BEERKARFEN, BEERMELDE . . . and going to KOOTJONGEN, KDOTKKOTD, 
KOOTSFEL. 

The Introduction to this code explains this pussling fact, "Through 
lack of tine It has been Ispossible to incorporate in the WAR HBBARPCST TEUBGEAPHXC 
CODE a ll desirable phrases, and in consequence the first 471 pages of the Western 
Union Telegraphic Code now in use by the Amy will continue in use as a supplementary 
code. This affords the Amy the telegraphic uae of 100,000 code words, of which 
ambers 1 to 78,201, inclusive, era In the Western Union Telegraphic Code and 
numbers 78201 to 100,000 are In the War Department Telegraphic Code ". 

It thus becomes clear that for several years the new War Department Code 
was to be used in conjunction with the commercially available public Western 
Union Telegraphic Cede . This was stated to be for the purpose of economy. For 
secrecy the additive or subtractive method was to be used. The futility of such 
sn old and simple method for achieving communication security needs no comment. 

X wish there were time to read you the instructions In that new War Department ^Code 
as regards the rise of these ciphers for secrecy. They are practically the some as 
those in the 1885 version of Slater's Code and are unbelievably futile, but 
what else could be expected when cryptology Is relegated to a position of military 
science far - inferior to that of teaching the use of a rifle or bayonet, subjects 
which are taught, as a rule, by experts? Why was cryptology left to inejperienced 
amateurs during all those years about which X am telling you? Was It stupidity? 

No, Just a lack of appreciation of the importance of secure communications In 
military operations. 

Eow long this combination of two codes continued to be used X don't know. 

Some time during the years 1900 to 1915 this absurd system must have proved itself 
entirely unsatisfactory, for In >1915 another brand new Wag Department Telegraph Code 
was put out, under direction of Brigadier General George P. Sc riven, the Chief 
Signal Officer of the Army who succeeded Greeley. The bock bears no security 
classification, for even as late as in 1915 there was no classification system 
for security purposes. The instructions recommended certain precautions. "The 



12 



REF ID : A62842 



War Department Telegraph Code, " says paragraph 5 of the instructions, "while not 
absolutely confidential, will be guarded with toe greatest ear© and will never be 
out of the immediate possession car control of the officer to whcsn issued or of his 
confidential agent. Care will be taken to prevent theft, loss, use, or inspection 
except by those whose duties require then to es&ley the code. Special pains will 
be taken to prevent the code from falling into the hands of unauthorised persons 
or of the enemy. ” 

This new code, as the case of its predecessor was, "intended, to serve two 
purposes: First, secrecy, said second, economy. ‘When secrecy is desired it is to be 
used as a cipher code, as is explained in subsequent paragraphs under 'Enciphered 
Code' . " But there are no subsequent paragraphs in which this is explained. 

Apparently same change in this regard was decided, because Z have seen, as a 
separate paaqphlet, a set of cipher tables for use with 'tibia code. 

The code itself embodied ease of the latest ideas of code catenation. 

It had over 113,000 code groups, and these were both figure groups andyfor the 
first time, 5 -letter groups. The latter embodied the principle of the 2-letter 
difference, but the instructions do not mention this fact end no permutation, table 
was included in the code itself. The book has a very extensive vocabulary of 
words, phrases, and sentence a. I feel sure that a great deal of thought and effort 
went into the production of this code but I must tell you two things about it. First, 



I must tell you that my imoediate predecessor in the 0 C Slg 0 told me on my return 
from France in 1919 that that particular nd&aer- of the War Department Telegraph 
Code had been printed in Cleveland by a commercial printer; and second, that when 
the United States became a belligerent in World War I our British Allies found it 
desirable to notify that our War Department Telegraph Code was not safe to use, 
even with its superenciphertaerrt tables. The implications of this notification 
ere rather obvious and hardly require comment. The compilation of a new cods In 
1917 was initiated but this time the work was done. within and under the direction 



of the Military Intelligence Division of the General Staff, and in particular 
within the section devoted to cryptanalysis. This undertaking, which indubitably 
was a direct affront to the Signal Corps cf the Army, met with no objection, it seems, 
from that Corps; perhaps It deserved the intended insult because of its long- 
standing neglect of its clear responsibilities for cryptography and cryptographic 
operations in and for the Army. 

We have noted hoy inadequately the Army and the war Department were equipped 
for cryptocommunications in the years from 1885 to 1915 . Let ns see how well 



13 




REF ID : A62842 



equipped the Navy and the Navy Department were. For this purpose Z have an 
excellent example and one of great historical significance and interest. You will 
recall ay mention of the appointment of a hoard of Navy officers to prepare a suitable 
cryptosystem for the Navy and I told you about the large basic vocabulary and 
tabular contents of the codebook and Its accompanying two large books, one for 
enciphering the code groups, the other for geographical names. For the story 
we go beck to the time of President McKinley, whose election brought Theodore Roosevelt, 
a former member of the Civil Service Commission, back to Washington as Assistant 
Secretary of the Navy. Teddy was an ardent advocate of military and naval preparedness. 
Be forthrightly aid frankly favored a strong foreign policy, backed by adequate 

to " M 

military and naval strength - "speak softly but carry a big stlck"^ Be was looking 

c- 

forward, in fact, to forcing HP the ultimate withdrawal of the European powers from 
the Western Hemisphere. With vigor, he set to work to make the Navy ready. When 
the Battleship Maine was blown up in Havana harbor, on 15 February 1898, Roosevelt 
sharpened his efforts. During a temporary absence of his chief. Navy Secretary 
John D. Long, he took It upon himself to Initiate the preparations which he had In 
vain tried to persuade the Secretary to make. Be ordered great quantities of coal 
and ammunition, directed the assembling of the Fleet, end stirred the arsenals and 
navy yards into activity. On a Saturday afternoon, ten days after the U.S. Battleship 
Maine was blown up, and still In the absence of Secretary Long, Teddy sat down and 
wrote out a cablegram to go to Commodore George Bawey, at Bong Kong. Here it Is, 
with his bold signature at the bottom: 



That is the now historic message which alerted Dewey and which resulted In 
ourttaklng over, under U. S. protection In the war which was declared ten days later 
on Spain, the Philippine Islands. I-dua^V^fchliili - we r e aUy^ wa at e d t h ea. 

You will note that the message bears on its fac ^/4 security classification, but 
the classification, "Secret and Confidential", was crossed out. That must have been 
many years later, for those three words appear in the plain text of the deciphered 



14 



REF ID : A62842 



and decoded cablegram. Hare la a picture of the code cablegram with Its 
strange and outlandish code words, as It was received in Hong Kong: 




And now I show you the deciphered and decoded text, which I was fortunate 
In being able to produce by courtesy of the Chief of the Navy Security Group, who 
permitted me to consult and use the necessary code books which I found were still in 
Navy Security archives. To translate a message In the code then In use three steps 
are necessary. First, the cable words (the peculiar, outlandish words In line 2 - 
WASSERREXF, PAUSATURA, BADANADOS, IWULputc . ) are sought In the cipher book, 
and their accompanying cable-word numbers set down. WA8SBKREXF yields 99 055; 

PAUSATURA yields 62399* BADANADOS, 11005; etc. The next step 

is to append the first digit of the second cable-word number to the last digit of 
the first cable-word number to make the latter a six-digit number. Thus 990?? becomes 
990956. The Six-digit code group number, 990556, is then sought in the basic code book 
and its meaning is found to be "Secret and Confidential. " The transfer of the 
first digit, 6, of the second cable-word number, 62399* makes it become code -number 

2399* to which must now be appended the first two digits of the third cable -word 

9 

number, 11005, thus making the second code group of the code message £ 3911 , which 

A 



15 



REF ID:A62842 



V 



la sought in the basic coda book and yields the meaning "Order the squadron. " And 
so on. It's painfully slow work, and I haven't told you about some of the difficulties 
X encountered in the process, Including having to refer to the third book, the, 

General Geographical Tables . Xt took an hour to translate this one relatively short 

Ur*. 

Roosevelt message. X feel sure a naval rtwwigii >1— in World War XX or in Wfxrld 
War X, for that matter, could never have been executed before a message of the length 
of the Roosevelt one could be deciphered end decoded by this cumbersome system, even 
If all the digits had been transmitted and received correctly. Generally speaking, 
naval battles axe fierce and quickly aver. For instance in tvo minutes, an 4 June 1$42, 
from 10:24 to 10:26, the war with Japan was decided vhen the U.S. Pacific Fleet 
under Admirals Nlrnitz, Fletcher and Spruance won the Battle of Midway, In which the 
Japanese lost four fast carriers, together with their entire complement of planes, 
and almost all their first-string aviators. When our Wavy entered World War X a 
much more practical system was put into effect, using a cipher device known as 
the NCB, standing for "Navy Cipher Box", to encipher 5-letter group s of a basic code. 

" Later, I'll show you a picture of this box, probably the very prototype of what 
we now often call a "black box. " 

. We came now to European events of Importance In this cryptologic history. 



During the decades from the end of the Civil War In America to the first decade 



of the 20th Century there was some progress In cryptologic science In Europe but It 

i 

was not of a starting nature. German Army Major Kaslekl's demonstration of a 

A 

atraightford, mathematical method of solving the Vigenere cipher was published In 
Berlin during the mid-period of the Civil War In America. If the book created an 
Impression In Europe it was altogether unspectacular; in America it remained unheard 
of until after the advent of the 20th Century. Although Kaslekl's method is explained 
guite accurately In the first American text on cryptology,* the name Kasiskl doesn't 
even appear In It. Other books On cryptologic subjects appeared In Europe during this 
period, and two of them deserve special attention. The first, by ooranandant Bazeries, 
Is a book notable not for Its general contents, which are presented in a rather dis- 
organized, illogical sequence, but for Its presentation of a cipher device invented 
by the author, the se-c ailed cylindrical cipher device, a picture of which I now show 
you. But our own Thomas Jefferson anticipated Bazerles by a century, and here axe 
two slides describing Jefferson's "Wheal Cipher", copies from the original 
manuscript among the Jefferson Papers In the 



*C'apt. Parker Hitt's Manual for the solution of military ciphers. Fort Leavenworth, 
Kansas: Army Service Schools Press, 1916. 



16 




1 



REF ID : A62842 



Library of Congress. The second book which deserves special attention 
Is one by another French cryptologist, the Marquis de Viarls, In vhlch he 
presents methods for solving cryptograms prepared by the Bazeriea cipher 
cylinder, and, although unknown to him, the ciphers of Jefferson's Wheel 
Cypher. 

It was in the period during which books of the foregoing nature were 
written and published that the chanceries of European Governments operated 
sole ailed '‘Black Chanfcers", organised for solving one another's secret 
communications . Intercept was unnecessary because the governments, owned 

l 

and operated the telegraph systems and traffic could be obtained simply by 

making copies of messages arriving or departing from telegraph offices or 

\ 

passing In transit through them. This was true in the case of- every 

i 

country in Europe with one very Important exception: Great Britain* The 

\ 

story, which Is given in detail In a recently published and very fully 
documented book* la highly interesting but X must condense it to a few 
sentences. 

In Khgland, from about the year 1540 onward until 1844 , there was a 
"black dumber" JBt-ln constant operation. It was composed of three 
collaborating organizations within the Post Office respectively called "The 
Secret Office", the Private Office", and "The Deciphering Branch”. 

In the first of these highly secret organizations, letters were opened, 
copies of them were made, the letters replaced, the envelopes resealed, and 
If the wax seals were intact they were merely replaced. If the seals were 
not replaceable, duplicates were forged and affixed to the envelopes. 

Copies of letters in cipher were sent to the "Deciphering Brandi" for 
solution and the results, if successful, were then sent to the Foreign 
Office. A famous mathematician, John Wallis, took part in the letter 
activities. The. "Private Office" took care of similar activities hut only 

*Ellls, Kenneth L. The Post Office In The Eighteenth Century; A Study In 
Administrative History . London: Oxford University Press, 195 ® > pp. 176 . In 
conjunction with this book one should by all means also read the following 
extremely Interesting and revelatory article by the same author: "British 

commmicatlons and diplomacy in the eighteenth century". Bulletin of the 
Institute of Historical Research, Vol. XXXI, No. 84 , Nov 195 &> PP* 159 * 167 . 



17 



REF ID : A62842 



in connection with internal or domestic communication^ . In 1844. , & 
scandal involving these secret offices caused Parliament to close them 
down completely, so that from 1844 until 1914 there was no black ehiwiher 
at all in Britain . As a consequence, when World War I broke but on the 
first of August 1914 England's black chamber had to start from scratch. 

But within a few months British brains and ingenuity built a cryptologic 
organization known as "Boom 40 O.B.", which contributed very greatly to 
the Allied victory in 1916. Although the British Government has never 
Issued a single official publication on the activities and accomplish- 
ments of "Room 40 O.B. ", several books by private authors have pushed 
aside the curtain of secrecy to make a most fascinating story too long to 
tell in this lecture. But I must tell you at least something shout what 
was perhaps the single greatest achievement of "Room 40 O.B.", an 
achievement which Just in the nick of time brought this country into 
World War I as an active belligerent on the Allied side and saved Bigland 
from complete destruction, as veil as France. The operation involved the 
interception and solution of a message known as the Ziirnnarmann Telegram, 
deservedly called the moat important single cryptogram in all history. 

On 8 September 1958 Z gave before an NBA audience a detailed account of 
-this amazing cryptogram. X told about ltB Interception and solution; X 
told how the solution was handed over to the United States; how it brought 
America into the war on the British aide; and how all this was done 
without disclosing to the Germans that the plain text of the Zlmraermann 
Telegram had been obtained by Interception and solution by cryptanalysis, 
that is,. by* science and not by treason. My talk was given under the 
auspices of the NBA Crypto -Mathematics Institute, was recorded, and is 

on file so that, if you wish, you can hear it. It took two and a half 

\ 

hours to deliver and at that X didn't quite succeed in telling the whole 
story. But you may read an excellent account of this episode, set forth 
in great detail in a book entitled The Zinnermann Telegram, by Barbara 
Tuchman, published in 1958 by the Viking Press, New York. Also, you should 
consult a book entitled The Eyes of the Navy, by Admiral Sir Wi ll ia m James, 
published in 1955, by Methuen & Co., London. Both books deal at length 



18 





REF ID : A62842 



with The Zimaermann Telegram and tell how astutely Sir William Reginald 
Belli Director of British Naval Intelligence In World War I, managed the 
affair so as to get the maximum possible advantage from the feat 
accomplished by "Room 40 O.B'.’, that lS| the British Black Chamber. To 
summarize, as I must, this fascinating and true tale of a very important 
cryptanalytlc conquest, let me show you again the telegram as It passed 
from Washington to Mexico City, for If you will remember I showed it to 
you in the very first lecture of this series, as Fig* 1 




thereof , and promised, to tell you about It later. Here I show It to you 
once again, and as you can easily see, the code groups are composed of three, 
four, and five-digit groups, mostly the latter. Sere Is the English decoded 
translation of the message as transmitted by our Ambassador Page In London 
to President Wilson. 



19 




REF ID : A62842 



From the day that Ambassador Page sent hie cablegram to President Wilson 
on 28 February 1917 > quoting the English translation of the Zimmermann 
Telegram in the form in which it had been forwarded by German Ambassador 
von Bernstorff in Washington to German Minister von Eckhardt in Mexico 
City, the entrance of the United States into the war as a belligerent on 
the side of the Allies became a certainty. Under big black headlines the 
English text appeared in our newspapers, because after assuring himself of 
the authenticity of the telegram handed over by the British, and that it 
had been decoded and checked by a member of Ambassador Page's own staff, 
President Wilson directed that the text of the message be released to the 
Associated Press* Its publication the next day was the first of a momentous 
and sensational series of reports and accounts of the Zimmermann Telegram and 
its contents. 

But there were plenty of members of Congress who disbelieved the story. 
Here are a few of their comments. "It was too fantastic"; "it was a British 
plot, unproved" ; "Wilson was being taken in", etc., etc. But When Zimmermann 
himself foolishly acknowledged that he had indeed sent such a telegram, 
disbelief changed quickly into vehement anger. Thus, it came about that 
Americans in the Middle West and Far West, who had thus far been quite 
unconcerned about a War that was going on in Europe, thousands of miles away 
and wanted no part of it, suddenly awoke when they learned that a foreign 
power was making a deal to turn over some rather large slices of U. S. real 
estate to a then hostile neighbor across the southern border. They were 
aroused to the point where they, too, as well as millions of other Americans 
in the East, were ready to fight. Surely war would now be declared on 



’'■20 



REF ID : A62842 



notwithstan d ing all the furor that the disclosure of the Mg»w»rmann 
Telegram created in America, President Wilson still hesitated. Be was 
still determined that America would not, oust not, fight, Zt was not 
until more than a month later, end after several American ships were sunk 



without yarning on 18 Burch, that a now fully aroused President got Congress 
to declare war on Germany and her allies. The date was 6 April 1917 . 

In the War Department and in the Beery Department the pace set for 
preparing for active war operations quickened. Zt la difficult to believe, 
but I assure you that it was true, that there was at the moment in neither 
of those departments, nor in the Army or Navy, any organisations or technical 
groups whatever, either for intercepting eneny coramuol cations or for studying 

v 

them, let alone sowing such communications * 3here was. It is true since 
the autumn of 1916, a very snail group of a elf -trained cryptanalysts, 
sponsored and supported by a private citizen named Colonel George Fakyan? 
who operated the Riverbank laboratories at Geneva, Illinois. Z served as 
leader of the group, in addition to other duties as a geneticist of the 
laboratories. Riverbank, through Colonel Fabyan, had initiated and established 
an unofficial or, at most, a quasi-official relationship with the authorities 
in Washington, so that it received from time to time copies of cryptographic 
messages obtained by various and entirely surreptitious means from telegraph 
and cable offices in Washington and elsewhere in the U. S. At that period 
in our history diplomatic relations with Mexico ware in a sad state, so that 
U. S. attention was directed southward, and not dastvard across the Atlantic 
Ocean. Therefore, practically all the messages sent to Riverbank for solution 
were those of the Mexican Government, Riverbank via successful in solving all 
or nearly all the Mexican cryptograms it was given, usually returning the 
solutions to Washington very promptly. The great majority of them were of the 
Vigen^re type but using mixed sequences with relatively long key phrases. 
Riverbank was also successful with certain other cryptograms with a background 
of the war In Europe but Z cannot deal with them now because there Just isn't 
time. Soon after the U. 8. declared war on Germany Col, Pabysn at Riverbank 
established a school for training and he invited the Services to send him 



■"Honorary title conferred by the Governor of Illinois for Fayan's participation 
as a member of the Peace Commission that negotiated the Treaty of Portsmouth, 
which followed the Russo-Japanese War in 1906. 



21 





REF ID : A62842 



Amy and Navy officers to learn something about cryptology. In formal 
courses established for the purpose. Each course lasted about six weeks, 
full time. 

You may like to know what ve novices used for training ourselves for 
this unusual task, and what ve used later on for training the student 
officers sent to us for cryptologic instruction. As regards our self* 
instruction training materiel, there wasn’t much available in English but 

among the very sparse literature there was a small hook entitled Manual 

a 

for the Solution of Military Ciphers, which had been prepared by/u. 8. Army 
Captain of Infantry named Parker Hitt end which had been printed by the Press 
of the Any Service Schools at Port Leavenworth, in 1916. Colonel Fabyan 
managed to get a copy of that Manual for use to study. The Signal Carps 
School was then one of the Any Service Schools end there a few lectures 
were given by two or three officers who, when World War I broke out in 
August 1914, took an interest in the subject of military cryptography. They 
foresaw that sooner or later there would be a need for knowledge In that 
Inportent branch of military technology. Capt. Hitt's Manual, was then, and 
still is, a model of compactness end practicality. Let me show you the title 
page of the first edition. Here it is. 

It was the succinctness of Parker Hitt's Manual that caused us much work 
end perspiration in our self -training at Wverbahk, and we later came to know 
and admire its author, whose photograph I now show you as he looked when he 
became a Colonel In the Signal Corps. 

There was one other item of training literature which we also studied 
avidly. It was a very small pamphlet entitled An Advanced Problem in Crypto- 
graphy and its Solution, and it too was put out by the same Leavenworth Press 
in 1914. Here is its title page. You will note that its author was then 
let Lieut. J. 0. Mauborgne; he advanced to become a Major General and Chief 
Signal Officer of the Arny. The "advanced problem" dealt with in that 
pamphlet was the Playfair Cipher, about which I shall say only that at the time 
Mauborgne wrote about that particular cipher it was considered much more 
difficult than it now is regarded. 



/ 



22 



REF ID : A62842 



Returning now to what our self -trained cryptanalytic group was able 
to do in a practical way in the training of others, there exist in NSA. 
archives copies of the many exercises and problems prepared at Rlverbank 
for this purpose. They are still of much interest historically* 

Zn Lecture II X showed you a picture of the last of the several 
classes sect by The Adjutant General of the Al aajf to Rlverbank for training. 

It should be noted end it gives roe considerable pleasure to tell you that 
this Instruction was conducted at Colonel Fabyan ’ s own expense as his 
patriotic contribution to the U. S. war effort. I can't in this lecture 
say much more about this than that it involved the expenditure of many 
thousands of dollars, never repaid by the government— not even by some 
decoration or similar sort of recognition. Upon completion of the last training 
course I was consnissioned a first lieutenant in Military Intelligence, General 
Staff, and ordered immediately to proceed to American General Headquarters in 
France, where 1 became a member of a group officially referred to as the 
Radio Intelligence Section. But it was the German Code and Cipher Solving 
Section of the General Staff, a designation that was abbreviated es 0-2, A-6, 
GHQ-ALF. As the expanded designation Implies, the operations were conducted 
in two principal sections, one devoted to working on German Amy field 
ciphers, the other, to working on German Amy field codes. There were also 
very small groups working on other material such as meteorologlc messages, 
direction-finding bearings, and what we now call traffic analysis, that Is, 
the study of what ve call "the externals" of enemy messages in order to 
determine enemy order of battle and other vital intelligence from the study 
of B.F. bearings, the direction, ebb and flow of enemy traffic, and other 
data sent back from our intercept and radio direction-finding operations at 
or near the front line of the combat zone. 

In connection with the last-mentioned operations you will no doubt be 
interested to see What is probably one of the earliest, if not the very first 
chart in cryptologic history, that shows the intelligence that could be derived 
from a consideration of the results of traffic analysis. Its utility in 
deriving intelligence shout enemy intentions from a mere study of the ebb and 
flaw of enemy traffic, without being able to solve the traffic, was of 
unquestionable value. Here's that historic chart, which I must tell you was 
drawn up from data based solely upon the ebb and flow of traffic in what ve 



23 



REF ID : A62842 



called the AEPGVX cipher ,La_cl ever cryptosystem which vas devised by \ 

German cryptographers end which vas restricted in Its usage to German High 

Command communications, principally those between and among the headquarters 

of divisions and a my corps. Its restriction to such high command messages 

made a study of its ebb and flow very important. Theoretically, that cipher 

vas extremely secure. Zt combined both a good substitution and an excellent 

transposition principle in one and the same method without being too 

conplicated for cipher clerks. Here is a diagram vhlohwill give a clear 

understanding of its method of usage. (Explain elide.) If you wish further 

details I suggest you consult documents available in the Training literature 

Division of the HHA Office of Training. In this lecture there is only time 

to tell you that although individual or isolated messages in the ADEGVX 

system appeared at fiat to be absolutely inpregnable against solution, a great 

many messages transmitted in it were read by the Allies. You may be astonished by 

the foregoing statement and therefore may desire some enlightenment here and 

now cm this point. In brief, there were in those days three and only three 

different methods of attacking that cipher. Under the first method it was 

necessary to find, as the first step, two or more messages with identical 

plain-text beginnings because they could be used to uncover the transposition, 

which was the second step. Once this had been done, the cryptanalyst had then/ 
o' 

to d ej£L with a substitution cipher In which two-letter combinations of the 
letters A, D, P, G, V, and X represented single plain-text letters. The 
messages were usually of sufficient length for this purpose, which amounted to 
solving a monoalphabetic substitution. Udder the second method, two or more 
messages with identical plain-text endings could be used to uncover the 
transposition, ibis was easier even than the case of messages with Identical 
beginnings. You might think that cases of messages with Identical beginnings 
or endings would be rather rare, but the addiction to stereotypic phraseology 
in military communications is so prevalent In all military communications , and 
especially In German messages, that cases were almost invariably found, in each 
day's traffic, of messages with similar beginnings or endings, and sometimes 

^Initially this cipher employed only the letters A, D, F, G, and X, for a matrix 
-5 x 5; later, the letter vas added, for a matrix of 6 x 6, for the 26 letters of 
the alphabet plus the ten digits. 




REF ID : A62842 



both. This system first came into use on 1 March 1913, three weeks before 
the last and greatest offensive by the German Array. Its appearance was 
coincident with that of other new codes and ciphers* The number of messages 
in the AUPCrVX cipher varied from about 25 a day, when the system first went 
into use, to as many as about 150 at the end of two months. It took about a 
month to figure out a method of solution, and this was first done by a very 
able cryptanalyst named Capt. Falnvin of the French Amy's Cipher Bureau. 

The AEFGVX cipher was used quite extensively on the Western Front with 
daily changing keys during May and June of 1918 but then, for reasons some- 
what obscure, the number of messages dhropped very considerably. How many 
different keys were solved by the Allies during the four months fTom^l March 
to the end of June? Not many— 10 in all; that is, the keys far only 10 * 
different days were solved. Yet, because the traffic on those days was very 
heavy, about 50 $ of all messages ever sent In that cipher, from its Inception 
to its discard, were read, and a great deal of valuable Intelligence was 
derived from them. On one occasion solution was so rapid that an Important 
German operation disclosed by one message was completely frustrated. 

Although the AEPGVX cipher came into use first on the Western Front, it 
later began to be employed also on the Eastern Front, with keys that were 
first changed every two days but later every three days. On 2 November 1918 
the key for that end the next day was solved within a period of an hour and a 
half because two messages with identical endings were found. A 13-part message 
in that key gave the complete plan of the German retreat from Roumsnla. 

During the whole year of the life of the AEFCVX cipher, solution depended 
upon the three rather special cases I mentioned. No general solution for it 
was though up by the Allies dh spite a great deal of study. However, members 
of our own Signal Intelligence Service, in 1933 > and while still students 
undergoing instruction in cryptanalysis, devised a general solution and proved 

its efficacy. Pride in their achievement was not diminished when, in the 

/ 

course of writing up and describing their method, I happened to find a similar 
one in a book by French General Givierge ( Coura de Cryptographic, published 
in 1965). Givierge was by then the head of the French Black Chamber, which was 

coSfiejl ^ 

e n -b - J e "Deuzieme Bureau", corresponding to our "G-2, 

1 1 

t 

f \ 

\ 



26 




REF ID : A62842 



The AUPQVX cipher vme not the or Oy one used by the German Amy in 
World War Z, and there will be time to mention very briefly only two 
others. The first of these was a polyalphabetie substitution cipher call 
the "Wilhelm, " which used a cipher square with disarranged alphabets and with 
a set of 30 fairly lengthy keywords. Here is the cipher qquare Just why 
the square contains only 22 rows instead of 26 is probably connected with 
the fact that German can get along very well with fever than 26 letters. 
Certainly the rows within the square ere not random sequences, as you can see, 
for the letters within them manifest permuted arrangements in sets of five 
letters. And here is a slide showing the keys used— 31 of them. The key 

sequences are not cosposed of random letters. I leave it to you to try to 

a/ 

reconstruct the rejjl square, if possible] you should be able to reconstruct 
the reel keys. The latter problem should be relatively easy. 

The other German Amy cipher to be mentioned is the double transposition, 
an example of which is shown in this next elide. The process consists in 
applying the same transposition key twice to the same matrix, once horirontally 
and once vertically, as seen in this slide* Solution of the true double 
transposition usually depends upon finding two or more messages of identical 
length. (You will remember What Z told you about Capt. Holden in this 
connection.) Ho general solution was known to the Allies during World War Z, 
and messages of identical length were few indeed. But it happened that 
occasionally a fiferman operator would apply only the first transposition and 
when this fortunate situation occurred solution was easy, because the key 
thus recovered from the single transposition could be used to decipher other 
messages which had been correctly enciphered by the double transposition. 

Again, the Signal Intelligence Service devised a general 



REF ID : A62842 



solution for the double transposition cipher and during World War II were able to 
prove that such ciphers could be solved without having to find two messages of 
identical length. I think the devising of a general solution for the true double 

transposition cipher represents a real l andma r k of progress in cryptanalysis* 

We come to the code systems used by the belligerents in World War I. And 

first, let us differentiate those used for diplomatic communications from those used 
far military communications. What sorts did the German Foreign Office use? We 
have noted that the British Black Chamber, 'Boom 40 O.B. " enjoyed astonishing 

success with the code used for the transmission of the^jEjimmermann Telegram. 

/ 

Excessive pride in German achievements in Science, a wholely unjustified confidence 
in their communications cryptosecurity, and a disdain for the/^pfmesa of enemy 
cryptanalysts laid German diplomatic communications open to solution by the Allies 
to the point where there came a time when nothing the German Foreign Office was 

telling its representatives abroad by telegraph, cable or radio remained secret 

/ 

from their cryptologic protagonists. For those of you who would like to learn some 
details, 1 refer you to the following monograph on the subject by my late colleague 
Captain Charles J. Mendelsohn: Studies in German Diplomatic Codes Bnploycd During 

the World War. Government Printing Office, 1937- Copies of it available in the 

Office of Training, USA. Says Dr. Mendelsohn: 

"At the time of America's entrance into the war German Codes wom an 
unexplored field in the United States. About a year later we received, from 
the British a copy of a partial reconstruction of the German Code 130& 

(about half of the vocabulary of 19,200 words and 800 of the possibly 7,600 
proper names). Ibis code and its variations of encipherment had been in use * 
between the German Foreign Office and the German Embassy in Washington up to 
the time of the rupture in relations, and our files contained a considerable 
number of messages, some of them historical interest, which were now read 
with the aid of code book. " 

The vocabulary of the German diplomatic codes comprised I89 pages each having 100 
words or expressions to the page, arranged in two columns of 50 each, accompanied 
by numbers from 00 to 99* H e r e da s-wyji In 

each coftumn the groups were in blocks of 10. In the left-hand column, for instance 

were the five blocks from 00*09, 10*19, etc., to 40-49 i then 50-59# 60-69, etc., 
were in blocks of 10 in the right-hand column. The pages in the basic code were 
numbered and from this code several codes were made by the use of conversion tables. 
This enabled the original signal basic code to serve as the framework for apparently 
unrelated and externally distinguishable codes for several different communication 
nets. What the number of the basic code was is unknown, but we do know that from 
the code designated as Code ,13040 came codes 5990, 26040, and others, derived 

1 

merely by means of tables for converting the page numbers in the basic code into 



\ 

\ 



27 



REF ID : A62842 



different page numbers In the derived code. These conversions were systematic, 
in blocks of fours. Thus, for example, pages 15-18 in code I30U0 became pages 
65068 in code 5950/ etc. Then there v ere tables for converting line numbers from 
one code into different line numbers in another version of the basic code, and this 
was done in blocks of 10. For example, the fifth block (penultimate figure 4) became 
the first (penultimate figure 0), and the 1st, 2nd, 3rd, and 4th blocks vere moved 
down one place. The other five blocks (on the right-hand side of the page) vere 
rearranged in the same manner. 

It is obvious that codes derived in such a manner from a basic code by re- 
numbering pages and shifting about the contents of pages in blocks can by no means 
be considered as being different, and entirely unrelated codes, and once a relation- 
ship between two externally different but internally related codes was discovered 
the two could be~hea&l€d as equivalents of one another. Also to be mentioned is 
the fact that in certain cases numbers vere added to or substracted from the eode 

j 

numbers of a message and this gave rise to what seemed to be still difficult to 
determine the additive or subtractive and thus get ho-the basic eode numbers. 

V . * \ 

In none of the cases or codes mentioned thus far was there one that could be 
considered to be a randomized, 'batted, or true two-part code, since the same 
book served for both encoding and decoding. However, the German Foreign Office 
later on did compile and use real two-part, truly-randomized codes of k0,000 
groups numbered from 0000 to 9999 * One such code had as itB indicator the number 
7500. And that there vere several others like it I have not doubt. 

When one reviews Or. Mendelsohn's monograph one becomes overwhelmed by the 
multiplicity of the codes and variants thereof used by the German Foreign Office. 

Some vere basic codes but many vere derivatives, or superencipherments thereof. 

It is even hard to ascertain the exact number of different codes and superencipherment 
methods. Yet a great deal of the traffic in these codes was read. Considering 
the rather small number of persons on the crypt analytic staff of G-2 in Washington 
and in the British counterpart organization in London, in the British Black Chamber, 
one can only be astonished by the great achievements of the efforts of these two 

collaborating organizations that worked on German diplomatic codes during World 

1 

War, I. 

1 

\ 

/ 

1 

\ 



28 




REF ID : A62842 



So much for German diplomatic secret communications . What about German military 
crypto-comunicatlons? In this area It is necessary to mention a situation which Is 
somewhat unique. When World War I commenced the German Army was very poorly prepared 
to meet the requirements for secure communications. It seems that up until the 
Battle of the Marne In 1914 several German Army radio stations want into the field 
without any provision having been made or even foreseen for the need for speedy 
and secure crypto-communications . Numerous complaints were registered by German 
commanders concerning extensive loss of time occasioned by the far too complicated 
methods officially authorized for use and the consequent necessity for sending messages 

in the clear. Not only did this reveal Intelligence of importance to their opponents 

r 

but what is equally Important the practice permitted the British and the French to 
became thoroughly familiar with the German telegraphic procedures , methods of 
expression, terminology and style, and the knowledge gained about these items became 
of great importance In cryptanalysis when German cryptosystems Improved. The 
Genian Army learned by hard experience something about its shortcomings In this area 
of warfare and not only soon began to improve but it did so to the point where ve 
must credit the Germans with besting the Initiators of new and important developments 
in field military cryptography. In fact, the developments and Improvements began 
not long after the Battle of the Marne and continued steadily until the end of the 
war* When on 11 November 1918 the armistice ended active operations, German military 
cryptography had attained a remarkably high state of efficiency. The astonishing 
fact, however. Is that, although very proficient In cryptographic inventions, they 
were apparently quite deficient in the science and practice of cryptanalysis. In 
all the years since the end of World War I no books or articles telling of German 
success with Allied radio traffic during that war have appeared; one Austrian 
cryptanalyst, a man named FlgH, attempted to publish a book on cryptanalysis but 
It seems to have been suppressed. One could of course assume that they kept their 
successes very well hidden but the German archives taken at the end of World War II 
contain nothing significant in regard to cryptanalysis during World War I although 
a great deal of Important Information In this field during World War II was found. 

A detailed account of the cryptologic war between the Allied and German farces in 
World War II would require scores of volumes, but there is one source of information 
which I can highly recommend to those of you who would like to know more details of 



29 




REF ID : A62842 



the cryptologic warfare between the belligerents in World War I* That source Is 
a booh written and published in Stockholm In 1931 by a Swedish cryptanalyst, 

Yves Gulden, under the title Chlfferbyraernas Insatser I Varldshriget Till Lands, 
a translation of which, with some comments of my own in the form of footnotes, 
you will, find on file in the Office of Training, USA, under the title 
The Contribution of the Cryptographic Bureaus la the World War , Government 
Printing Office, 1936. 

In this lecture, however, we are principally concerned with German military 
cryptography during World War I, and I have already told you something about the 

4 

cypher systems that were used. There remains to be discussed the field codes. It 
was the German Army which first proved that the old idea that codebooks were 
impractical for use in the combat zone for tactical communications was wrong. They 
had two types of field codes: one which they called the SCHLUESSELHEFT but which 
we called the "three-number code", the other which they called the SAXZBUCH but 
which we called the "three-letter code". 'The former was a small standardized code 
with a vocabulary of exactly 1,000 frequently used words and expressions, digits, 
letters and syllables, etc., for which the code equivalents were 3-digit numbers. 

A cipher was applied only to the first -two digits of she code numbers and this 
cipher consisted of 2-digit groups taken from a 10 x 10 matrix for enciphering 
the numbers from 00 to 99* This table was called the GEHEIMKLAFPE or "Secret Key", 
and here's a picture of one. The last digit of a code group eemalned unenciphered. 
Thus, code group 4?9 would become 629* Each division compiled and issued its 
owa secret key table, which was la two parts, or sections, of course, one for 
encipherment the other for decipherment. The three-number oode was intended for 

1 

use in all forms of communication within, or to and from, a '3-kilometer fx cat-line 
danger zone. Although this code was completed by the end of January 1913, it was 
not distributed or put into use until the opening day of the last and greatest 
German offensive, 10 March 1918. Our code solving section, through good fortune 
and careful attention, ascertained the nature of the new code sad a few groups 

j 

in it were solved the very same day the code was put into effect because a German 
cipher operator who waa unable to translate a message in the new code requested 
and received repetition in another code which had been solved to an extent which 
made it possible to identify homologous 



30 



REF ID:A62842 



code groups in both messages. The three -number code proved rather easy to solve on 
a daily basis because only the encipher -decipher table was changed. Much useful 
Intelligence vas obtained from the dally solution of this key. 

The solution of the SAXZ 5 QCH or three -letter code, however, proved to be a 
much more difficult problem. In the first place, it had a much larger vocabulary, 
with nulls and maty variants for frequent ly -used words, letters, syllables and 
numbers; in the second place, and what constituted the real st umbling block to 
solution, was the fact that it was a true two-part randomized or “hatted* code; 
and in the third place, each sector of the front used a different edition of the 
code, so that traffic not only had to be identified as to the sector to which It 

i 

belonged but also it was not possible to combine all the messages for the purpose 
of building up frequencies of usage of code groups. Working with the sparse amount 
of traffic within a quiet sector of the front and trying to solve a few messages In 

i 

this code was really a painfully slow, very difficult sad generally discouraging 
experience. On my reporting for duty to Colonel Frank Moorman, who was Chief of the 
whole unit and whose photograph Z show you here, I was asked whether I wished to be 
assigned to the cipher section or to the code section. Having had considerable 
experience with the solution of the former types of cryptosystems but none with the 
latter, and being desirous of gaining such experience, I asked to be assigned to the 
code solving unit, in order to broaden ay professional knowledge and practice in 
cryptology. Little did X r e alize what a painful and frustrating period of learning 
and training X bad undertaken, but my Choice turned cut to he a very wise and 
useful one. If any of you would like to read about my experience in this area, let 
me refer you to ny monograph, written in 1918-19, entitled Field Codes Used by the 
German Army during the World War, copies of which are on file in the Office of 
Training, HSA. X will quote the last two paragraphs from my “estimate of the 
three-letter code* (on page 65 of that monograph) and will remind you that although 
they were written over 40 years ago they are still applicable: 

“Xu the light of this limited experience (of less than six months 
with the 3 r letter code) it is impossible to say absolutely what the 
degree of security offered by such a highly developed system really is. 

There is no doubt but that it is very great. There is no doubt but that, 
with the proper precautions, careful supervision and control the employ- 
ment of such a code by trained men offers the highest possible security 
far secret communication on the field of battle. 

Hut no code, no matter how carefully constructed, will be safe 
without a trained, intelligent personnel. A poorly constructed code 
may be in reality mom safe when used ly an expert than a very well 
constructed one when used by a careless operator, or one ignorant of 
the 'dangers of Improperly encoded messages. This point cannot be 
, overemphasized. Xt is hardly necessary to point out, therefore, that 
the proper training of the personnel which is to be put in charge of 
the work of coding messages is an essential requisite to the maintenance 
of secrecy of operations, and thus of success on the field of battle.” 



31 



REF ID:A62842 



So math, tor the German Armor field codes, about which a great deal more could 
be said but we must hurry on to the cryptosystems of some of the other armies in 
World War X. 

What sorts of cryptosystems did the French Army use? First, as for ciphers, 
they put much trust in transposition methods and here is an example of one type. 
Perhaps you remember one of those special route ciphers X showed you In the 
preceding lecture, the one with the diagonal that produced com plexit ies that made 
the use of that route too difficult for the cipher operators of the GSHZC. this 
French transposition cipher was much more complicated by those diagonals and X 
wonder how much use was made of this cipher by Idle French. 

, i 

As for codes, like the Germans they used a small, front-line booklet calle d 
a "Carnet Redoit”, or an "Abbreviated Codebook". Various sectors of the front had 




You will notice that the enciphering process breaks up the 4-digit groups in 
a rather clever manner by enciphering the first digit of the first code group 
separately; the second and third digits of the first group are enciphered as a 
pair; then the last digit of the first group and the first digit of the second code 
group are enciphered as a pair, and so on. This procedure suceeds in breaking up 
the digital code groups In such a manner as to reduce very greatly the frequency 
of repetition of 4-digit groups representing words, numbers, phrases, etc., of 
very common occurrence in military messages. My appraisal of this French Army 
field cryptosystem is that, theoretically at least, it certainly was the most 
secure of all the field systems used by the belligerents. 

Sow how about the cryptosystems used by the British Aray? First, they used 
the Playfair Cipher, a system of digraphic substitution considered in those days 
to be good enough for messages in the combat zone. Bat today, of course, its 
security is known to be so low that it hardly merits confidence far serious 

i 

t * 

usage. The British also used a field code. It contained many common military 

£> 

expressions and sentences, grouped under various headings or categories, and 



REF ID:A62842 



of course, a very snail vocabulary of frequently -used words, numbers, punctuation, 
etc. Xt was always used with superenc ipherment , the nature of which was not dis- 
closed even to their Allies, so X an not In a position to describe it. He did not 
even have a copy of their code— only a typewritten transcript which was furnished 
us quite reluctantly. This next slide was made by setting up in print a typical 
page thereof. 

What about the cryptosystems used by the Italian Army in World War Xt The 
general level of cryptologic work in Italy during that period was quite low, & 
fact which is all the more remarkable when we consider that the birthplace of modem 
cryptology was in Italy several centuries before. There appears to have been in 
Italy a greater knowledge of cryptologic techniques in the 15th and l6th Centuries 
than In the 19 th, paradoxical as this may aeea to us today. Perhaps this can be 
considered as one of the consequences of the need for secrecy which requires filing 
away in dusty archives records of crypt analytic successes; hut It is to he con- 
sidered also that this prevents those who might have a flair for cryptologic work 
from profitting from the progress of predecessors who have been successful in such 

wfcln \ 



work. We should tbkflpftmfia not he too astonished to learn, therefor, that 



\ 



Italy entered World War I the Italian Army put its trust in a very simple variation 
of the ancient Vigen^re cipher, a system called the "cifrario militaire tascabile" 
or the "pocket military cipher.* Xt, as well as several others devised by the ^ 
same Italian "expert”, were solved very easily by the Austrian cryptanalysts during \ 
the war. The Italian Army also used codes, no doubt, but since encipherment of 
such codes consisted in adding or subtracting a number from the page number an (\ 
which a given code group appeared, the security of such systems was quite Illusory. 

As late as in 1927 the same Italian "expert" announced his invention of an 
absolutely indecipherable cipher system which, Gylden says (page 23) "still further 
demonstrates the astonishing lack of comprehension of modern crypt analytic methods 
on his part.” 

What about Russian cryptology in World War It As regards cryptographic work, 
it is known that there was, during the era of the last of the Czarlstlc rulers, an 
apparently well organised and effective bureau far constructing and compiling 
diplomatic codes and ciphers, which had been organised by & Russian named Savinsky, 
formerly Russian Minister to Stockholm. He saw to it that all codes and cipher 
in use were improved; he introduced strict regulations for their use; and he kept 

j 

close watch over the cryptographic service. He also was head of a cryptanalytic 



33 




REF ID:A62842 



activity and it is knows that Turkish, British, Austrian and Swedish diploaatlc 
messages were solved. After the Bolshevik revolution of 1916 sons of the Russian 
cryptanalysts managed to escape from their homeland and X had the pleasure of 
meeting and talking with one of the best of them during his service with one of our 
Allies in World War IX. Be is no longer alive hut X vividly recall that he wore 
with great pride on the index finger of hie right hand a ring In which was mounted 
a large ruby. When X showed interest in this unusual gem he told me the ring had 
been presented him as a token of recognition and thanks for his crypt analytic 
successes while in the service of Czar Nicholas, the last of the line. 



But the story is altogether different as regards cryptology in the Russian Army* 
The Military Cryptographic Service was poorly organised and, besides, it had adopted 
a cryptographic system which proved to be too complicated for the poorly trained 
Russian cipher and radio operators to use when it was placed into effect toward 
tiie end of 1914. Here is a picture of that cipher, which was composed of two tables, 
one arranged for convenience In enciphering and the other arranged to convenience In 
deciphering. In the enciphering table the letters of the Russian alphabet (33 in all) 
appear in the topmost row of characters, the 2 -digit groups, in random order within 
each of the 8 rows below the top row, are their cipher equivalents. These rows 
therefore constitute a set of 8 cipher alphabets, these alphabets being preceded by 
key numbers from 1 to 8 in random order. Both the cipher equivalents and the 



indicators were subject to change. Indicators were used to tell how many letters 

V 

were enciphered consecutively in each alphabet, the indicator consisting of one of 

1' 
t\ 

the digits from 1 to 9 repeated five times. The alphabets were then used in \ 
key-number sequence, enciphering the first set of letters ( 5 , 7 , etc., according 
to the Indicator) by alphabet 1, the next set by alphabet 2, and so on. After t] 

8 th set of letters, which was enciphered by cipher alphabet 8 , return is made to 
cipher alphab et l, repeating the sequence la this manner until the entire message 
had been enciphered. In enciphering a long message the cipher operator could change 
the n>inihgir of letters enciphered consecutively by inserting another indicator digit 
repeated five times and then continuing with the next alphabet in the sequence of 

alphabets. The cipher text was then sent in 5-digit groups. The use of the 

' . 

deciphering table hardly requires explanation but this question may be in order: 

Why the aversion to the use of zero and to the use of double digits such as 11, 22, 
33 , etc.t This probably was thought to be helpful to the telegraph operators as 




well as to the cipher clerks in straightening out errors in transmission and 
reception. 



\ 



\ \ 



\ 



34 






f 




REF ID:A62842 



1 have told you that this cipher system proved too difficult fear the »»««<«»« 
to use., and Z think you can see why. It was so difficult that messages had to he 
repeated over aad over, with great Iras of tine* It is well known to all historians 
by this tine that the Russians lost the Battle of Tannenberg la the autumn of 1914 
largely because of faulty communications . Roar cryptography aad failure to use 
even the most simple ciphers properly on the field of battle, and not brilliant 
strategy on the part of the enemy, was the cause of Russia's defeat in that and in 
subsequent battles* The contexts of Russian communications became known to the 
German and Austrian High Commands within a few hours after transmission by radio. 

The disposition and movements of Russian troops, and Russian strategic plans were 
no secrets to the enemy* The detailed aad absolutely reliable information obtained 
by intercepting and reading the Russian communications made it very easy for the 
German and Austrian commanders not only to take proper counter-measures to prevent 
the execution of Russian plans, but also to launch attacks on the weakest parts of 
the Russian front. Although the Russian ciphers were really not complicated their 
cipher clerks and radio operators found themselves unable to exchange messages with 
accuracy and speed. As a matter of fact they were so inept that not only were their 
cipher messages easily solved bub also they made so many e rr o rs that the intended 
recipients themselves had considerable difficulty in deciphering the messages even 
with the correct keys. In same cases this led to the use of plain language, so that 
the German and Austrian forces did not even have to do anything but intercept the 
messages and translate the Russian. To send oat disposltlons^iapendlng movements. 

Immediate and long-range plans in plain language was, of course, one cardinal error. 

/ 

Another was to 1 encipher only words and phrases deemed the important ones, leaving 

the rest in clear* Another cardinal error, made when a cipher was superseded, was 

\ 

to send a message to a unit that had not yet received the new key and on 
then repeat the identical message in the old key* I suppose the Russians 
every error in the catalog of cryptographic criminology. Bo wonder they loot 
Battle of Tannenberg, which one military critic said was not a battle but a 
because the Russians lost 100,000 men in the 3 -day engagement, on the last day 
Which the Russian coamjaander -in-chief committed suicide . Three weeks later another 
high commander followed suit and the Russian Any began to fall apart, com 

pletely disorganised, without leadership or plans. Russia itself began to go down 
in ruins when its Army, Mary and Gov e rnment failed so completely, and this made way 
far the October revolution, ushering in a regime that was too weak to put things 

i 

together again and to hold them together. The remnants picked up by a small band. 

35 






REF ID:A62842 



of fanatics with military and administrative ability, with treachery, violence and 
cunning, velded together what has now become a mighty adversary of the Western 
World, the USSR. 

X have left to be treated last in this lecture the cryptosystems used by the 
American Expeditionary Farces in Europe daring our participation in World War I. 

When the first contingents of the ABF arrived in France in the summer of 1917, 
there were available for secret corniml cations within the ASF bub three authorised 
means* The first was that extensive code for administrative telegraphic correspondence , 
the 1915 edition of the War Department Telegraph Code about which X*ve already told 
you something* Although it was fairly veil adapted for that type of caamnxnicatioh, 
it was not at all suitable for rapid and efficient strategic or tactical communica- 
tions In the field, nor was it safe to nse without a clumsy superencipherment . ■, The 
second cryptosystem available was that known as the repeating-key cipher, which 
used the Signal Corps Cipher Disk, the basic principles of which were described as 
far back as about the year 1500. The third system available was the Playfair Cipher, 
which had been frankly copied from the British, who had used it as a field cipher 
for many years before World War X and continued to use it. la addition to these 
authorised means there were from time to time current in the ASP apparently several- 
how many, no one knows — unauthorized, locally-improvised "codes’* of varying degrees 
of security, mostly nil* X show one of these in this slide and will let you assess 
its security yourself* 

Seen in retrospect, when the ASF was first organised it was certainly unprepared 
for handling secret communications in the field; but it is certain that it was no 

more unprepared in this respect than was any of the other belligerents upon their 

/ 

# i 

respective entries into World War X, as I've indicated previously in this lecture. 

! 1 

This is rathef strange because never before in the history of warfare had cryptology 

played so important a role as a consequence of advances in electrical communications 

/ 

technology. When measured by today's standards it must be said that not only was 
the ABF on its arrival in Europe whole ly unprepared as to secret communication means 
and methods and as to cryptanalysis, but for a limited time it seemed almost hopeless 

1 

that the ASF could catch up with the technical advances both sides had made, because 
their' British and French Allies were at first most reluctant to disclose much of 
their hard-earned information about these vital matters* 

nevertheless, and despite so Inauspicious a commencement, by the time of the 
Armistice, in November 1918, not only had the AEF caught up with their allies but 

i 



$ 




REF ID : A62842 



they had surpassed them In the preparation of sound codes, as say be gathered from 
the fact that their allies had by then decided to adopt the AEF system of field 
codes and methods for their preparation, printing, distribution, and usage. 

Just as the invention of Horse wire telegraphy had a remarkable effect upon 
military comm u nications during the American Civil War, as related in the preceding 
lecture, so the invention of radio also played a very important role in field 
communications during World War H. Sow, although it can hardly be said that all 
commanders from the very earliest days of the uae of radio in military ccnomanicaticns 
acutely recognized one of the most important disadvantages of radio— namely, the fact 
that radio signals may be more or less easily intercepted by the enemy — it was not 
long before the consequences of a complete disregard of this obvious fact impressed 
themselves upon most commanders, with the result that the transmission of plain 
language became the exception rather than the rule. This gave the most momentous 
stimulus to the development and increased use of cryptology that this service 
ever experienced. 

Let us review some of the accomplishments of the Code Compilation Service 
under the Signal Corps, AS?. It was organized in January 1918 , and consisted of 
one captain, three lieutenants and one enlisted man. Until this service was 
organized, that is, from the sumner of 1917 until the end of that year the AS? had 
nothing for cryptocommunications except those three inadequate means, that I've 
mentioned. When it has been determined that field codes were needed, little time 
was lost in getting on with the job that had to be done. Since I bad no part in 
this effort I can say, without danger of being charged with Impropriety, that the 
Code Compilation. Service executed the most remarkable job in the "history of military 
cryptography up to the time of World War IX. 

The first work entrusted to it was the compilation of a so-called "Trench Code", 
of which 1000 copies were printed, together with what were then called “distortion 
tables*. These were simple monoalphabets for enciphering the 2-letter groups of 
the code. I will show you a picture of a page of this code and of one of the 
"distortion tables". The danger of capture of these codes was recognized as being 
such that the books were not issued below battalions. Heaee, to meet the needs of 
the front: line, a much smaller book was prepared and printed, called the "Front 
Line Code" . Distortion tables, 30 of them in all, were issued to accompany this 
code of Which an edition of 3,000 copies was printed. But the code was not dis- 
tributed, because a study of its security showed defects. The truth is that AS? 



37 




REF ID : A62842 



cryptographers with personnel inexperienced in cryptanalysis were groping in the 
dark, with little or no help from allies. Finally, the light broke through: the 
Code Compilation Service began to see the advantages of that German 3-letter 
randomized 2-part code X*ve told you about, the one called the Sahzbuch. Here, 
then, was the origin of the Trench Codes which were finally adopted and used by the 
ASF, when it was decided that copying and benefitting from the experience of German 
code compilation was no dishonor. The ASP then went them one better, as you 
now learn. The first code of the new series of the ASF field codes was known as 
the "Potomac Code"? it was the first of the so-called "American River Series," 
sad it appeared on 2k June 1913, in an edition of 2,000 copies. Xt contained 
approximately 1,700 words and phrases and, as the official report so succinctly 
states, "was made up with a coding and decoding section in order to reduce the work 
of the operators at the front." The designation "two-part," "randomized," or, least 
of all, the British nomenclature "hatted* code was still unknown — but the principle 
was there nonetheless. Let us see what the official report goes on to say on this 
point} let us listen to some sound common senses 

"The main point of difference from other Any codes lay in the 
principle of reprinting these books at frequent Intervals and depending 
largely upon the rapidity of the reissuance for the secrecy of the eodes. 

This method did away with the double work at the front of ciphering and 
deciphering (Sici), end put the burden of work upon general headquarters, 
where it properly belonged. Under this system one issue of codes could 
he distributed down to regiments} another issue held at Army Headquarters; 
and a third Issue held at General Headquarters. As a natter of record 
this first book, the Potomac, was captured by the enemy on July 20, just 
one month after issuance, but within two days, it had been replaced 
throughout the entire Army in the field." 

The replacement code was the Suwsnee, the next in the River Series, followed 
hy the Vabash, Allegheny, and the Hudson, all for the American First Army. In 
October 1918 a departure in plan was made and different codes were issued simul- 
taneously to the First and Second Armies. This was done in order not to jeopardize 
unnecessarily the life of the eodes hy putting in the field at one time 3,000 and 
6,000 copies of any one issue. Thus the Champlain, the first of what came to be 
called the "Lake Series," for the Second Army, was issued with the Colorado of the 
"River Series" for the First Army; these were followed by the Huron and the Osage, 
the Seneca and the Biagara, in editions of 2,300 each. 

In addition to the foregoing series of codes were certain others that should 
he mentioned, as for example, a short code of 2-letter eode groups to be used by 
front line troops as an emergency code; a short code list far reporting casualties; 

1 

a telephone code for disguising the names of commanding officers and their units. 



3S 



REF ID : A62842 



and so on* But there was in addition to all the foregoing one large code that mat 
he mentioned, a code to meet the requirements for secure transmission of messages 
among the higher commands in the field and between these and GSQ. This was a task 
of consid e rable magnitude and required several months' study of messages, confidential 
papers concerning organisation, replacement, operations, and of military documents of 
all sorts. The code was to be know^as the ASF Staff Code . In May 1913, the manu- 
script of this code was sent to press and the printing job was done in one month 
by the printing facilities of the ASP Adjutant General. Considering that the code 
contained approximately 30,000 words and phrases, accompanied by code groups consist- 
ing of 5 -figure groups and 4 -letter groups, the task completed represents a remarkable 
achievement by a field printing organisation and I believe that this was the largest 
and most comprehensive codehook ever compiled and printed by an army In the field. 

Mare than 50,000 telegraphic combinations were sent in tests In order to cast out 
combinations liable to error in transmission. One thousand copies of tills code were 
printed and bound. With this code, as a super enciphenaent system, there were issued 
from time to time "distortion tables." There remains only to be said that the war 
was over before this code could be given a good work-out, but I have no doubt that 
during the few months it was in effect it served a very useful purpose. Moreover, 
the excellent vocabulary was later used as a skeleton for a new War Department 
Telegraph Code to replace the edit ion of 1915* 

One mere code remains to be mentioned* a "Radio Service Code," the first of 
its kind in the American Army. This was prepared in October, to be used instead of 
a French code of similar nature. Finally, anticipating the possible requirement 
for codes for use by the A ray of Occupation, a series of three small codes, identical 
in format with the war-time trench codes of the river and lake series, was prepared, 
and printed. They were named simply Field Codes Ho. 1, 2 and 3 but were never 
issued because there turned out to be no need far them in the quietude In Germany 
after the Army of Occupation marched into former enemy, but now very friendly 
territory. 

I will bring this lecture to a close now by referring those of you Who might 
wish to learn more about the successes and exploits of the cryptographic organisa- 
tion of the ASF in World War I to ay monograph entitled American Army Field Codes 
in the American Expeditionary Forces during the First World War, Government Printing 
Office, 13h2. Copies are cm file in the Office of Training. In that monograph you 
will find many details of interest which I have had to omit in this talk, together 



39 




REF ID : A62842 



with many photographs of the codes and ciphers produced and used not only by the AEF 
but also by our allies and enemies during that conflict. 

i 

In Lecture So. 4 two USMTC cipher messages were given and X said that their 

solutions would he presented at the conclusion of the next lecture. Sere they are, 

* , 

both being from Major General Buell to General in Chief Hailed:, relating to the 
relief and reinstatement of Buell* 



4o 




REF ID:A62842 






Louisville, %&., September 29, 1862 



Maj . Gen. Halleck," General is Chief: 

X have received your orders of the 24th Inst., requiring me to turn 
over ay command to Maj. Gen. G. H. Thomas. X have accordingly turned 
over the coaanand to him, and in further obedience to your instructions, 

I shall repair to Indianapolis and await further orders. 

I>. C. Buell, 

Major-General 



Louisville, Xy., September 30, 1062 

General Halleck: 

X received lest evening your dispatch suspending ny removal from 
command. Out of a sense of public duty, X shall continue to discharge the 
duties of say command to the best of my ability until otherwise ordered. 

B. C« Buell, 

Major-General 



1 \ 



\ 



4l 



/ 






